Hi Peter Peter Thomassen via knot-dns-users <[email protected]> wrote: > On 4/13/25 21:59, Michael Grimm via knot-dns-users wrote:
>>> Or RFC 9615: >>> https://www.knot-dns.cz/docs/3.4/html/modules.html#authsignal-automatic-authenticated-dnssec-bootstrapping-records >> Interesting, thanks. >> Now I need to find out, if that's possible with an ip6.arpa zone … > > In general it's possible if the parent operator supports it. I'm not aware of > any DNS operators support it as a parent operator (only some > registrars/registries, see https://github.com/oskar456/cds-updates). Oh, that list includes RIPE NCC [1]. Does that mean: it is possible to bootstrap DNSSEC for my ip6.arpa zone? Sorry for that newbie question, but that is absolutely new for me. Thanks and regards, Michael [1] https://docs.db.ripe.net/Database-Support/Configuring-Reverse-DNS/#automated-update-of-dnssec-delegations --
